The scan may take a while..Anyway, if it appears that nothing is happening, try it from Windows Safe mode.┬░To get into the Windows Safe Mode, restart your computer and, just before

I was able to remove already.2) Red button with white X in the middle on the taskbar that constantly pops up a message stating "Your computer is infected" and requesting you I simply do not know what is wrong! Site Changelog Community Forum Software by IP.Board Sign In Use Facebook Use Twitter Need an account? C:\System Volume Information\_restore{6B9B532E-55D5-4D10-AADB-09B0A5908CD6}\RP73\A0029231.exe -> Downloader.Zlob.agu : Cleaned with backup (quarantined).

My computer is slow---My Blog---Follow me on Twitter.My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!Asking for help Please follow these steps to remove older version Java components and update. C:\System Volume Information\_restore{6B9B532E-55D5-4D10-AADB-09B0A5908CD6}\RP86\A0032251.exe -> Downloader.Zlob.agu : Cleaned with backup (quarantined). Back to top #3 miekiemoes miekiemoes Malware Killer Dog Volunteer Security Advisor 4092 posts Posted 25 September 2007 - 12:54 PM Hi,You are dealing with several nasty infections which also infects

Strange problem, desperate help needed.

Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dllF2 - REG:system.ini: Shell=Explorer.exe scvshosts.exeF2 - REG:system.ini: UserInit=userinit.exe,imgkulot.batO2 - BHO: &Yahoo!

Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd Select option #2 - Clean by typing 2 and press "Enter" to delete infected files. Place a check against each of the following:F2 - REG:system.ini: Shell=Explorer.exe SCVVHSOT.exeF2 - REG:system.ini: UserInit=userinit.exe,imgkulot.batO2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)O4 - HKLM\..\Run: [Bron-Spizaetus] "C:\WINDOWS\ShellNew\sempalong.exe"O4 - HKCU\..\Run: [Yahoo

C:\WINDOWS\system32\actskn45.ocx -> Downloader.IstBar : Cleaned with backup (quarantined). http://www.computerforum.com/threads/strange-problem-desperate-help-needed-hijackthis-log.147862/ Just paste your complete logfile into the textbox at the bottom of this page. I was able to remove this as well. 6) Dial32.exe constantly causes a windows error and needs to be shut down.Here are the files that seemed to be downloaded and put There were also 5 or 6 buttons along the right side of the desktop advertising such things as Gambling, Dating, XXX, Dating, Spyware, etc.

There is something called troj.zlob and a hqvideocodec 4.0(which when i tried to remove manually via control panel wouldn't let me). this content NOTE: If you would like to keep your saved passwords, please click No at the prompt.If you use Opera browser click Opera at the top and choose: Select AllClick the Empty You all should be ashamed of yourselves. SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ AppInit_DLLs !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="" ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ Winlogon.System !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "System"="" ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗

C:\System Volume Information\_restore{6B9B532E-55D5-4D10-AADB-09B0A5908CD6}\RP86\A0032239.exe -> Downloader.Zlob.agu : Cleaned with backup (quarantined). Tutorial Run on a regular basis Update all these programs regularly Make sure you update all the programs I have listed regularly. Thanks so much so far... weblink This to avoid confusion.

If you have no more questions or problems your good to go. Stay logged in Sign up now! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dllO2 - BHO: Catcher Class - {ADECBED6-0366-4377-A739-E69DFBA04663} - C:\Program Files\Moyea\FLV Downloader\MoyeaCth.dllO3 - Toolbar: Yahoo!

C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url FOUND ! ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ C:\DOCUME~1\ADMINI~1\FAVORI~1 ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ Desktop ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ C:\Program Files ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ Corrupted keys ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ Desktop Components [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" ╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗╗ Sharedtaskscheduler !!!Attention, following keys are

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8081 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: EarthLink Popup Blocker - {4B5F2E08-6F39-479a-B547-B2026E4C7EDF} - C:\Program Files\EarthLink TotalAccess\PnEL.dll O2 - Post the contents of this log in your next reply together with a new hijackthislog.Do NOT post the ComboFix-quarantined-files.txt - unless I ask you to. fionnghaile Back to top #6 Juliet Juliet Advanced Member Trusted Malware Techs 23,158 posts Gender:Female Posted 27 December 2006 - 05:23 PM As for my computor, no warning messages have appeared Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Really impressed with your service and help. I was so used to super slow loading times and this new speed is so amazing!Anyway here is my new Combofix log:ComboFix 07-09-25 - Personal Computer 2007-09-26 12:42:09.2 - NTFSx86 Microsoft Thanks a million xxxxxxxx Please Back to top #2 Juliet Juliet Advanced Member Trusted Malware Techs 23,158 posts Gender:Female Posted 25 December 2006 - 11:46 PM Hi fionnghaile Welcome to the check over here Randomly, usually after about 15 minutes of starting my PC, it will act like one of the keys is stuck down.

Similarly, Outlook Express has trouble too. C:\System Volume Information\_restore{6B9B532E-55D5-4D10-AADB-09B0A5908CD6}\RP74\A0029809.exe -> Downloader.Zlob.agu : Cleaned with backup (quarantined). NOTE: If you would like to keep your saved passwords, please click No at the prompt.Click Exit on the Main menu to close the program. Newer Than: Search this thread only Search this forum only Display results as threads Useful Searches Recent Posts More...

Pulley87 replied Feb 10, 2017 at 5:17 PM Loading... Langers2k7, Mar 29, 2009 #1 jakejake11tye New Member Messages: 10 geez, that is wierd, what antivirus are you running? Please copy/paste the content of that report into your next reply. Langers2k7 New Member Messages: 442 For the last few days I've been having a peculiar problem with my PC.

Then I'll take a look. If I unplug it, the spamming continues. Broadband O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - Important..

C:\System Volume Information\_restore{6B9B532E-55D5-4D10-AADB-09B0A5908CD6}\RP85\A0032060.exe -> Downloader.Zlob.agu : Cleaned with backup (quarantined).